CVE-2024-2617: High severity RTU RTU500 vulnerability
A vulnerability exists in the RTU500 that allows for authenticated and authorized users to bypass secure update,
if secure update feature was not enabled on all CMUs of a RTU500. If a malicious actor successfully exploits this vulnerability, they could use it to update the RTU500 with unsigned firmware.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2617?
CVE-2024-2617 is considered a high severity vulnerability due to the potential for malicious firmware updates.
How do I fix CVE-2024-2617?
To fix CVE-2024-2617, ensure that all devices are updated with the latest security patches provided by the vendor.
Who is affected by CVE-2024-2617?
The RTU500 model is affected by CVE-2024-2617, particularly any installations that allow authenticated users to perform updates.
What can an attacker do with CVE-2024-2617?
An attacker could exploit CVE-2024-2617 to install unsigned firmware on the RTU500, compromising its integrity.
Is CVE-2024-2617 being actively exploited?
As of the latest information, there are no confirmed instances of CVE-2024-2617 being actively exploited, but it poses significant risk if left unaddressed.